Job Description
- Splunk for log source ingestion, Data source ingestion, setting up of alerting use of intermediate forwarder, Heavy Forwarded etc
- Ensure effective operation of SIEM content filters rules expressions and other identification mechanisms of the threat and vulnerability management technologies used within the SOC
- Provides professional data analysis within the SOC processes and to SOC customers in order to drive further security measures and risk mitigation activities
- Responsible for execution and maintenance of SOC related analytical processes and tasks
- Detailed technical security reporting to Management operating companies and appropriate stakeholders
- Work closely with other Information Security teams to ensure effective intrusion detection and incident response
- Continually maintain and improve technical capabilities through individual development activities accreditations and certifications to remain constantly prepared to challenge the ever evolving cyber threat
- Deep information security expertise
- Excellent knowledge of on SPLUNK
- Good understanding of Data Structure logging type ect Knowledge of network concepts Windows cloud and Unix administration
Primary Skills
- SOC
- Splunk
- SIEM
Secondary Skills
- Log source
- Cyber threat
- Firewall